cancel
Showing results for 
Search instead for 
Did you mean: 

Junos Pulse DOA with El Capitan (Mac OS 10.11)

SOLVED
mlevy18_
New Contributor

Re: Junos Pulse DOA with El Capitan (Mac OS 10.11)

PeterLScott_
Not applicable

Re: Junos Pulse DOA with El Capitan (Mac OS 10.11)

I was also told by support that Junos will not be releasing a pulse client compatible with the 10.11 version of OSX until after the final release of OSX 10.11 as well.

Currently I have found no workaround but I do run Paralles on my Mac with a Windows VM and the windows version of pulse secure client works perfectly well! :-)

(Additionally, there is the opton to enable pulse secure in addition to VPN tunneling at the user role level in the Junos admin console.) However, we have not tried this yet in our organization as our change process takes some time. I will visit this forum again once we have done so to advise on my findings.

Hope this helps...

Kita_
Valued Contributor

Re: Junos Pulse DOA with El Capitan (Mac OS 10.11)

I am posting the steps again to help clarify how I resolved this issue.

 

  1. Download the Symantec CA at https://knowledge.symantec.com/support/ssl-certificates-support/index?page=content&actp=CROSSLINK&id... (The expiration date should be 2021)
  2. Download the attachement called "Symc_Cross_Root.txt" and rename to "Symc_Cross_Root.cer"
  3. Open spotlight search and search for "KeyChain Access"
  4. In left pane, click System
  5. From the taskbar, click File > Import File
  6. Navigate to System_Cross_root.cer and click Open
  7. You should see the certificate name "VeriSign Class 3 Public Primary Certificate Authority - G5" (expires 2021) now appears.  Double-click the certificate
  8. From the certificate information window, click the arrow by "Trust"
  9. From the "When using this certificate" drop down, select "Always Trust"
  10. The certificate should have a blue + icon now which confirms the certificate is now trusted by the system.
ckg1999
Occasional Contributor

Re: Junos Pulse DOA with El Capitan (Mac OS 10.11)

The mentioned fix DOES NOT work for me in the latest version (15A226f). Any thoughts?

Junos Pulse[1007]: *** -[NSThread initWithTarget:selectorSmiley Surprisedbject:]: target does not implement selector (*** -[ConsoleAppDelegate scriptRunningProc])
Junos Pulse[1007]: .sdef warning for argument 'FileType' of command 'save' in suite 'Standard Suite': 'saveable file format' is not a valid type name.
kita
Regular Contributor

Re: Junos Pulse DOA with El Capitan (Mac OS 10.11)

Hello CKG,

I've upgraded to the latest beta release and the solution still works. Are you still getting invalid signature errors in the Pulse debuglog.log?
ckg1999
Occasional Contributor

Re: Junos Pulse DOA with El Capitan (Mac OS 10.11)

Yes, I am still getting "t4047 accessPluginLoader.cpp:113 - 'AccessService' plugin /Applications/Junos Pulse.app/Contents/Plugins/JamUI/uiModelService.dylib, invalid signature
00221,09 2015/07/30 09:34:33.522 1 root dsAccessService dsAccessService p0076 t4BDF accessPluginLoader.cpp:113 - 'AccessService' plugin /Applications/Junos Pulse.app/Contents/Plugins/JamUI/uiPromptPlugin.dylib, invalid signature"

With the new cert. I am running Pulse Secure 5.1.1 (52267) and 10.11 Beta 5.
kita
Regular Contributor

Re: Junos Pulse DOA with El Capitan (Mac OS 10.11)

What are the expiration dates of the certificates in your system store?
ckg1999
Occasional Contributor

Re: Junos Pulse DOA with El Capitan (Mac OS 10.11)

Sunday, Nov 7 2021 "VeriSign Class 3 Public Primary Certification Authority - G5"
ckg1999
Occasional Contributor

Re: Junos Pulse DOA with El Capitan (Mac OS 10.11)

All, still getting errors even with using the latest cert: VeriSign Class 3 Public Primary Cert. Authority G5 (exp. Sunday, Nov 7, 2021 at 5:59:59PM CST).

Trust: When using this certificate: Always Trust.

Pulse Secure 5.1.1.52267

What else am I missing?
kita
Regular Contributor

Re: Junos Pulse DOA with El Capitan (Mac OS 10.11)

CKG,

I would need to look at my machine to better understand the issue. Do you have a case opened for this?